CVE-2000-1134
- EPSS 0.18%
- Published 09.01.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Multiple shell programs on various Unix systems, including (1) tcsh, (2) csh, (3) sh, and (4) bash, follow symlinks when processing << redirects (aka here-documents or in-here documents), which allows local users to overwrite files of other users via...
CVE-2000-1189
- EPSS 0.05%
- Published 09.01.2001 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in pam_localuser PAM module in Red Hat Linux 7.x and 6.x allows attackers to gain privileges.
- EPSS 86.09%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in use_syslog() function in LPRng 3.6.24 allows remote attackers to execute arbitrary commands.
CVE-2000-0934
- EPSS 0.05%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Glint in Red Hat Linux 5.2 allows local users to overwrite arbitrary files and cause a denial of service via a symlink attack.
CVE-2000-0963
- EPSS 0.16%
- Published 19.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Buffer overflow in ncurses library allows local users to execute arbitrary commands via long environmental information such as TERM or TERMINFO_DIRS.
CVE-2000-1009
- EPSS 0.13%
- Published 11.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
dump in Red Hat Linux 6.2 trusts the pathname specified by the RSH environmental variable, which allows local users to obtain root privileges by modifying the RSH variable to point to a Trojan horse program.
- EPSS 2.32%
- Published 11.12.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Format string vulnerability in talkd in OpenBSD and possibly other BSD-based OSes allows remote attackers to execute arbitrary commands via a user name that contains format characters.
CVE-2000-0829
- EPSS 0.23%
- Published 14.11.2000 05:00:00
- Last modified 03.04.2025 01:03:51
The tmpwatch utility in Red Hat Linux forks a new process for each directory level, which allows local users to cause a denial of service by creating deeply nested directories in /tmp or /var/tmp/.
- EPSS 0.89%
- Published 14.11.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Some functions that implement the locale subsystem on Unix do not properly cleanse user-injected format strings, which allows local attackers to execute arbitrary commands via functions such as gettext and catopen.
CVE-2000-0867
- EPSS 0.07%
- Published 14.11.2000 05:00:00
- Last modified 03.04.2025 01:03:51
Kernel logging daemon (klogd) in Linux does not properly cleanse user-injected format strings, which allows local users to gain root privileges by triggering malformed kernel messages.